Overview
Syllabus
Intro
Car Safety - Unintended Acceleration
Car Perception While Driving
Behind Perception: End2End Object Detection
State-of-the-Art Vision-based Object Detection
Current Status of Adversarial Example
Adversarial Examples & L2 Norm Perturbations Impact to DNN
Explore Chances of Physical White Box Attack against YOLOV3
Deep Dive into YOLOv3
Training Dataset - MS COCO Dataset
YOLOv3 Prediction
Threat Model : Physical Image Patch Attack
Our Physical Attack Approach & Objectives
Differentiable Input Patch Construction
Attack Objective 1 - Object Fabrication
Attack Objective 2 - Object Vanishing
Challenges to the Success of Physical Attack
Tactics to the Challenges
Color Management with Non-Printability Loss
RT + TV for Various Distances & Angles
Put Everything Together: An Iterative Optimization
Conclusion & Takeaway
Taught by
Black Hat